
Iris AI – AI Homepage, Chatbot & Site Assistant Security & Risk Analysis
wordpress.org/plugins/iris-aiTransform your WordPress site with AI-powered chat. Full-page interface or floating widget. Vector search with citations.
Is Iris AI – AI Homepage, Chatbot & Site Assistant Safe to Use in 2026?
Generally Safe
Score 100/100Iris AI – AI Homepage, Chatbot & Site Assistant has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The iris-ai v2.0.2 plugin exhibits a generally good security posture, with a significant majority of SQL queries using prepared statements and output properly escaped. The absence of known vulnerabilities in its history is a strong positive indicator of responsible development. However, the presence of unprotected AJAX handlers and REST API routes represents a notable weakness in the plugin's attack surface. Specifically, three entry points are unprotected, which could allow unauthenticated users to trigger actions or access data. While taint analysis did not reveal critical or high severity flows, the identified flows with unsanitized paths warrant attention, as they could potentially be exploited if combined with other misconfigurations or weaknesses. The plugin also makes external HTTP requests, which, while not inherently a vulnerability, could become one if the target endpoints are compromised or if the plugin does not properly validate or sanitize the responses.
Key Concerns
- AJAX handlers without auth checks
- REST API routes without permission callbacks
- Taint flows with unsanitized paths
Iris AI – AI Homepage, Chatbot & Site Assistant Security Vulnerabilities
Iris AI – AI Homepage, Chatbot & Site Assistant Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Iris AI – AI Homepage, Chatbot & Site Assistant Attack Surface
AJAX Handlers 3
REST API Routes 8
Shortcodes 2
WordPress Hooks 27
Scheduled Events 4
Maintenance & Trust
Iris AI – AI Homepage, Chatbot & Site Assistant Maintenance & Trust
Maintenance Signals
Community Trust
Iris AI – AI Homepage, Chatbot & Site Assistant Alternatives
AI24 Assistant Integrator
ai24-assistant-integrator
Easily integrate OpenAI assistants into your WordPress site for enhanced user interaction and support.
Pulse Chat AI
pulse-chat-ai
AI-powered chat assistant for WordPress powered by an advanced ChatGPT 5 AI models. Zero configuration required - works immediately after installation …
EchoAI – AI Chat Assistant
echoai
Embed an AI assistant that learns from your content and never makes things up. Zero hallucinations — just accurate answers with source citations.
TM Chatbot Assistant
tm-chatbot-assistant
A powerful AI chatbot for use with Wordpress that enables OpenAI's Assistants to provide intelligent, conversational support to your website visitors.
AI Tool Center
ai-tool-center
AI Tool Center brings NimBot — a sleek, customizable AI assistant — to your WordPress website. Use your own API keys or our managed AI endpoints.
Iris AI – AI Homepage, Chatbot & Site Assistant Developer Profile
3 plugins · 90 total installs
How We Detect Iris AI – AI Homepage, Chatbot & Site Assistant
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/iris-ai/build/styles/chat.css/wp-content/plugins/iris-ai/build/styles/site-assistant.css/wp-content/plugins/iris-ai/build/js/chat.js/wp-content/plugins/iris-ai/build/js/site-assistant.js/wp-content/plugins/iris-ai/build/js/chat.js/wp-content/plugins/iris-ai/build/js/site-assistant.jsiris-ai/build/styles/chat.css?ver=iris-ai/build/styles/site-assistant.css?ver=iris-ai/build/js/chat.js?ver=iris-ai/build/js/site-assistant.js?ver=HTML / DOM Fingerprints
iris-ai-chatiris-ai-chat-input-wrapperiris-ai-chat-messageiris-ai-chat-message-useriris-ai-chat-message-assistantiris-ai-chat-bubbleiris-ai-chat-bubble-useriris-ai-chat-bubble-assistant+12 more<!-- Iris AI Chat --><!-- Iris AI Site Assistant -->data-irisai-chat-iddata-irisai-site-assistant-idIrisAIChatIrisAISiteAssistant/wp-json/irisai/v1/chat/wp-json/irisai/v1/search[irisai_chat][irisai_site_assistant]